US9894052B2ActiveUtilityA1

Location service for user authentication

Assignee: AMAZON TECH INCPriority: Sep 23, 2013Filed: May 23, 2016Granted: Feb 13, 2018
Est. expirySep 23, 2033(~7.2 yrs left)· nominal 20-yr term from priority
H04W 12/10H04W 4/80H04L 63/107H04W 12/06H04L 63/08H04W 4/008H04W 12/64
91
PatentIndex Score
6
Cited by
28
References
20
Claims

Abstract

A method and apparatus for location authentication of the user are disclosed. In the method and apparatus, the location of the user is authenticated if one or more conditions for geographic proximity associated with two or more devices of the user are satisfied. Upon the location of the user being authenticated, the user may be granted access to a service.

Claims

exact text as granted — not AI-modified
What is claimed is: 
     
       1. A computer-implemented method, comprising:
 receiving, from a first computing device, a request to register a second computing device as an authentication device for use with a location authentication service for user location authentication; 
 comparing a first location of the first computing device with a second location of the second computing device; 
 determining that the first computing device and the second computing device are within a pre-determined geographic boundary; 
 transmitting a code to the first computing device, wherein the code is usable by the second computing device to cause the location authentication service to transmit an acknowledgment that indicates that the second computing device has been registered; 
 receiving the acknowledgement; and 
 utilizing the location authentication service for authenticating a user's location based at least in part on the first location of the first computing device and the second location of the second computing device. 
 
     
     
       2. The computer-implemented method of  claim 1 , wherein:
 the method further comprises, in response to determining that the first computing device and the second computing device are within the pre-determined geographic boundary, transmitting a confirmation package to the first computing device to cause the first computing device to provide the confirmation package to the second computing device, the confirmation package comprising the code; and 
 the acknowledgement from the location authentication service specifies that the second computing device has provided the confirmation package and that the second computing device can be authenticated for use based at least in part on the confirmation package. 
 
     
     
       3. The computer-implemented method of  claim 1 , wherein the acknowledgment further indicates that the location authentication service can be used for authenticating the user's location. 
     
     
       4. The computer-implemented method of  claim 1 , wherein comparing the first location of the first computing device with the second location of the second computing device further includes:
 sending, to the second computing device, a request for the second location of the second device; and 
 receiving, from the second computing device, the second location of the second device. 
 
     
     
       5. A system, comprising:
 one or more processors; and 
 memory including instructions that, as a result of being executed by the one or more processors, cause the system to:
 receive, from a first computing device, a request to register a second computing device for use with a location authentication service for user location authentication; 
 determine that a first location of the first computing device and a second location of the second computing device are within a pre-determined geographic boundary; 
 transmit a code to the first computing device, wherein the code is usable by the second computing device to cause the location authentication service to transmit an indication that indicates that the second computing device has been registered; 
 receive the indication; and 
 use the location authentication service for authenticating a user's location based on the first location of the first computing device and the second location of the second computing device. 
 
 
     
     
       6. The system of  claim 5 , wherein the instructions further cause the system to transmit a notification to the location authentication service to indicate that the location authentication service can be used for authenticating the user's location. 
     
     
       7. The system of  claim 5 , wherein:
 the instructions further cause the system to transmit, to the first computing device, a confirmation package, the confirmation package comprising the code; and 
 receipt of the confirmation package causes the first computing device to transfer the confirmation package to the second computing device, which provides the confirmation package to the location authentication service for authentication of the second computing device. 
 
     
     
       8. The system of  claim 7 , wherein the confirmation package is transferred to the second computing device by using an application of the second computing device to capture a Quick Response code presented on the first computing device, the Quick Response code including the confirmation package. 
     
     
       9. The system of  claim 5 , wherein:
 the instructions further cause the computer system to:
 generate a first security code in response to the request to register the second computing device; and 
 transmit the first security code to the location authentication service; and 
 
 the indication from the location authentication service is generated in response to a determination that a second security code received from the second computing device matches the first security code. 
 
     
     
       10. The system of  claim 5 , wherein determining that the first location of the first computing device and the second location of the second computing device are within the pre-determined geographic boundary includes:
 sending, to the second computing device, a request for the second location of the second device; 
 receiving, from the second computing device, the second location of the second device; and 
 comparing the first location and the second location to determine whether the first location and the second location are within the pre-determined geographic boundary. 
 
     
     
       11. The system of  claim 5 , wherein determining whether the first location and the second location are within the pre-determined geographic boundary includes determining whether the first computing device is within a geographic boundary surrounding the second computing device or the second computing device is within a geographic boundary surrounding the first computing device. 
     
     
       12. The system of  claim 5 , wherein determining the first location of the first computing device includes receiving location information from an HTML5 browser of the first computing device. 
     
     
       13. A non-transitory computer-readable storage medium having stored thereon executable instructions that, as a result of being executed by one or more processors of a computer system, cause the computer system to:
 receive, from a first computing device, a request to register a second computing device for user location authentication; 
 determine that a first location of the first computing device and a second location of the second computing device are within a pre-determined geographic boundary; 
 transmit a code to the first computing device, wherein the code is usable by the second computing device to cause the location authentication service to transmit an indication that indicates that the second computing device has been registered; 
 receive the indication; and 
 use the location authentication service for authenticating a user's location based on the first location of the first computing device and the second location of the second computing device. 
 
     
     
       14. The non-transitory computer-readable storage medium of  claim 13 , wherein the instructions further cause the computer system to obtain, from a browser of the first computing device, location information to determine the first location of the first computing device. 
     
     
       15. The non-transitory computer-readable storage medium of  claim 13 , wherein the instructions further cause the computer system to transmit an acknowledgement to the location authentication service to indicate that the location authentication service can be used for authenticating the user's location. 
     
     
       16. The non-transitory computer-readable storage medium of  claim 13 , wherein:
 the instructions further cause the computer system to transmit, to the first computing device, a confirmation package, the confirmation package comprising the code; and 
 receipt of the confirmation package causes the first computing device to transfer the confirmation package to the second computing device, which provides the confirmation package to the location authentication service for authentication of the second computing device. 
 
     
     
       17. The non-transitory computer-readable storage medium of  claim 16 , wherein the instructions further cause the computer system to:
 generate the confirmation package; and 
 provide the confirmation package to the location authentication service to enable authentication of the second computing device. 
 
     
     
       18. The non-transitory computer-readable storage medium of  claim 16 , wherein the instructions further cause the computer system to receive the confirmation package from the location authentication service, the confirmation package generated by the location authentication service. 
     
     
       19. The non-transitory computer-readable storage medium of  claim 13 , wherein determining that the first location and the second location are within the pre-determined geographic boundary includes determining that the first computing device is within a geographic boundary surrounding the second computing device or that the second computing device is within a geographic boundary surrounding the first computing device. 
     
     
       20. The non-transitory computer-readable storage medium of  claim 13 , wherein:
 the instructions further cause the computer system to:
 generate a first security code in response to the request to register the second computing device; and 
 transmit the first security code to the location authentication service; and 
 
 the indication from the location authentication service is generated in response to a determination that a second security code received from the second computing device matches the first security code.

Join the waitlist — get patent alerts

Track US9894052B2 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.